Director responsible for leading technology risk and compliance programs for Digital and Client Technology Solutions. Collaborating with Canadian senior management and external stakeholders for risk management and compliance initiatives.
Responsibilities
The Director, Technology Risk and Compliance will strategically develop, lead and oversee risk management and compliance programs for the Digital and Client Technology Solutions (DCTS) area, including: technology audits, business continuity, client assurance/privacy and application security compliance programs.
This role will provide governance support and maintain a comprehensive risk management framework across Canada Technology's diverse portfolio.
Collaborate with Canadian senior management on strategic decisions impacting technology risk management
Lead engagement with Canadian external stakeholders, regulators and industry bodies on complex compliance matters
Oversee comprehensive application security compliance programs spanning DCTS's multiple disciplines and business units to ensure the framework and standards are adhered to
Ensure delivery of audit processes to the adequate satisfaction of internal and external stakeholders from a governance and reporting perspective
Direct comprehensive reviews of identity, entitlement and privileged access management processes across all critical Canadian applications
Establish and manage strategic partnerships with Canadian business functions to enhance their access review capabilities and maturity
Act as the Business Continuity (BC) Coordinator and work with DCTS leaders, Enterprise Services and Corporate BCP and compliance offices ensuring all BC objectives are completed for the DCTS organization in a timely manner, including Disaster Recovery exercises.
Manage relationships with senior Canadian leadership, executive levels and external auditors regarding technology risk posture
Lead a team of 6-10 resources handling the day-to-day activities related to technology risk and compliance for DCTS.
Requirements
10 or more years of progressive experience in Information Security, Risk Management or related functions with significant management experience
Proven track record of leading complex, multi-disciplinary risk and compliance initiatives within large Canadian technology organizations
Client focused mindset - exceed the expectations of our internal and external customers.
Deep expertise in operational risk management frameworks and processes
Comprehensive knowledge of Canadian regulatory compliance requirements and industry standards (ISO 27001, NIST, SOC 2, etc.)
Exceptional communication and influencing skills with ability to present to Canadian executive leadership and external stakeholders
Strong business acumen with understanding of Canadian financial services industry and regulatory environment
Proven ability to build consensus and manage complex stakeholder relationships across Canada Technology Assets
Advanced certifications: CISSP, CISA, CRISC or equivalent enterprise security certifications
Experience in Canadian financial services or highly regulated Canadian industries
Advanced degree in Information Security, Risk Management, Business Administration or related field
Experience with enterprise GRC (Governance, Risk and Compliance) platforms and advanced analytics tools
For Quebec Residents: Bilingualism (French, English, both oral and written) is required as the position includes managing French and English-speaking staff (Quebec and outside Quebec) and providing daily support to the team.
Benefits
Great Place to Work® Certified for Most Trusted Executive Team in Canada – 2025, 2024 and 2023
Great Place to Work® Certified for Best Workplaces in Canada - 2025
Canada Order of Excellence for Mental Health at Work® certification from Excellence Canada.
Pension, stock and savings programs to help build and enhance your future financial security
Work and professional development that is united by our Purpose: to help Clients and Employees achieve lifetime financial security and live healthier lives
A friendly, collaborative and inclusive culture
Be part of our continuous improvement journey in developing the next greatest digital enterprise experience.
Competitive salary and bonus structure influenced by market range data
Flexible hybrid work model.
Job title
Director, Technology Risk and Compliance – Digital & Client Technology Solutions
Compliance Engineer leading vehicle emissions certification and collaborating with cross - functional teams at General Motors. Delivering presentations and project management with engineering methods.
Senior Compliance Technologist coordinating compliance across food safety and quality standards at Premier Foods. Leading the HACCP team and improving practices for food safety compliance.
Senior Regulatory Specialist managing CMC renewals for Pharma and Vaccines. Collaborating across global teams to ensure compliance with regulatory requirements in pharmaceutical industry.
Senior HSE Management System & Compliance Specialist role at TechnipFMC, implementing and improving HSE management systems, ensuring compliance with industry standards and regulations.
Senior Manager of Compliance and Privacy responsible for compliance program and policies at Aeroflow Health. Leading efforts in regulatory compliance and enhancement of privacy practices.
Regulatory Compliance Consultant ensuring information protection and security standards for Aflac. Collaborating with teams on compliance with legal, regulatory, and industry practices.
OPS Regulatory Specialist reviewing applications for licenses and permits at Florida Division of Alcoholic Beverages and Tobacco. Ensuring compliance and providing guidance regarding licensure requirements.
Regulatory Consultant managing the review of applications and issuance of licenses for alcoholic beverages and tobacco in Florida. Ensuring compliance and assisting businesses with licensing laws.
Compliance Manager at Mesh responsible for global licensing strategy in fintech regulations. Leading compliance infrastructure to support growth and regulatory relationships in multiple jurisdictions.
Compliance Analyst responsible for Digital Privacy and Compliance activities at HARMAN. Collaborating on internal and external audits while managing policies and procedures related to security and compliance.